Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
306 results
mfcuk preview

mfcuk

GitHubnfc-tools/mfcuk

Recovers cryptographic keys from MiFare Classic RFID cards using DarkSide and nested-auth attacks for security testing of NFC/RFID systems.

cryptographyembedded-systems-securityhardware-security+4
1.1k
2 years ago
esp32_esp8266_attacks preview

esp32_esp8266_attacks

GitHubmatheus-garbelini/esp32_esp8266_attacks

Proof of Concept of ESP32/8266 Wi-Fi vulnerabilties (CVE-2019-12586, CVE-2019-12587, CVE-2019-12588)

embedded-systems-securityexploitationfuzzing+5
8217 years ago
FirmWire preview

FirmWire

GitHubfirmwire/firmwire

FirmWire is a full-system baseband firmware emulation platform for fuzzing, debugging, and root-cause analysis of smartphone baseband firmwares

binary-analysisdebuggersdynamic-analysis-sandboxing+6
8803 years ago
secureboot_objects preview

secureboot_objects

GitHubmicrosoft/secureboot_objects

Microsoft's curated repository of secure boot objects (KeK, Db, Dbx) for firmware and runtime, enabling transparent revocation updates and…

configuration-auditingembedded-systems-securityfirmware-analysis+3
2874 days ago
rex preview

rex

GitHubrex-rs/rex

Rex is a safe and usable kernel extension framework that allows loading and executing Rust kernel extension programs in the place of eBPF.

dynamic-analysis-sandboxingembedded-systems-securitysecurity-virtualization
5565 days ago
mlkem-native preview

mlkem-native

GitHubpq-code-package/mlkem-native

Secure, fast, and portable C90 implementation of ML-KEM / FIPS 203

cryptographyembedded-systems-securityhardware-security+1
2281 day ago
libfreefare preview

libfreefare

GitHubnfc-tools/libfreefare

A convenience API for NFC cards manipulations on top of libnfc.

embedded-systems-securityhardware-iot-securityhardware-security+2
4772 years ago
FTC-Skystone-Dark-Angels-Romania-2020 preview

FTC-Skystone-Dark-Angels-Romania-2020

GitHubchrisneagu/ftc-skystone-dark-angels-romania-2020

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

educationembedded-systems-securityhardware-security+3
3095 years ago
ghidralligator preview

ghidralligator

GitHubairbus-cyber/ghidralligator

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

binary-analysisdynamic-analysis-sandboxingembedded-systems-security+3
3312 years ago
owasp-istg preview

owasp-istg

GitHubowasp/owasp-istg

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

curated-resourceseducationembedded-systems-security+9
1291 month ago
rpef preview

rpef

GitHubmncoppola/rpef

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

embedded-systems-securityexploitationfirmware-analysis+6
12412 years ago
gustave preview

gustave

GitHubairbus-seclab/gustave

GUSTAVE is a fuzzing platform for embedded OS kernels. It is based on QEMU and AFL (and all of its forkserver siblings). It allows to fuzz OS kernels…

binary-analysisembedded-systems-securityfuzzing
2045 years ago
qualcomm_baseband_scripts preview

qualcomm_baseband_scripts

GitHubmzakocs/qualcomm_baseband_scripts

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

binary-analysisembedded-systems-securityfirmware-analysis+2
1923 years ago
433Screen-SignalHacker preview

433Screen-SignalHacker

GitHubluispl77/433screen-signalhacker

Full duplex 433 MHz Signal jammer, recorder, decoder and hacking multitool device based on ESP32 microcontroller and RFM69HW radios. This version of…

embedded-systems-securityexploitationhardware-hacking+3
1221 month ago
IoT-Implant-Toolkit preview

IoT-Implant-Toolkit

GitHubarthastang/iot-implant-toolkit

Toolkit for implant attack of IoT devices

binary-analysisembedded-systems-securityexploitation+8
1358 years ago
asafw preview

asafw

GitHubnccgroup/asafw

Set of scripts to deal with Cisco ASA firmware [pack/unpack etc.]

binary-analysisdebuggersembedded-systems-security+4
1084 years ago
str2hax preview

str2hax

GitHubfullmetal5/str2hax

An implementation of CVE-2009-0689 for the Nintendo Wii.

binary-exploitationembedded-systems-securityexploitation+2
866 years ago
cachegrab preview

cachegrab

GitHubnccgroup/cachegrab

a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 cores

binary-analysisembedded-systems-securityexploitation+3
877 years ago
Previous1…345…17Next